SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-43738

MEDIUM · CVSS 5.5 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

A vulnerability exists in the handling of asset catalogs in certain macOS versions, which could allow an attacker to exploit this flaw to disclose sensitive process memory. Organizations using macOS Sequoia 15.7.8 or macOS Sonoma 14.8.8 should prioritize patching to mitigate potential data exposure risks. This issue is particularly relevant for environments where asset catalogs are processed, as it may lead to unauthorized access to sensitive information.

CVE
CVE-2026-43738
Severity
MEDIUM
CVSS
5.5
EPSS
0.20%

Original NVD Description

The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted asset catalog may result in disclosure of process memory.

Related CVEs

Other vulnerabilities affecting the same vendor(s)